API Security

You can configure retrieving and collecting API data for further analysis by Cortex's comprehensive API Security capabilities using the following standard data sources:

AWS API Gateway vendor

Collection Method Description
Standard data source overview Integrate AWS API Gateway with the Cortex XSIAM AWS API Gateway data source to begin scanning the APIs for potential threats and vulnerabilities.
Link to standard data source instructions Ingest AWS API Gateway

Azure APIM vendor

Collection Method Description
Standard data source overview Send HTTP request/response data to Cortex XSIAM using the Azure APIM data source.
Link to standard data source instructions Ingest Azure APIM

F5 vendor

Collection Method Description
Standard data source overview Integrate a dedicated F5 log plugin to enable seamless traffic ingestion from your F5 Gateway to Cortex XSIAM, allowing for comprehensive security measures, such as OWASP Top-10, bot detection, access control, and more.
Link to standard data source instructions Ingest-F5

GCP Apigee Proxy vendor

Collection Method Description
Standard data source overview Integrate Apigee Proxy with Cortex XSIAM to begin scanning the APIs for potential threats and vulnerabilities using the Apigee’s JavaScript (JS) policy.
Link to standard data source instructions Ingest Apigee Proxy

Kong vendor

Collection Method Description
Standard data source overview Integrate a dedicated Kong HTTP log plugin to enable seamless traffic ingestion from your Kong API gateway to Cortex XSIAM, allowing for comprehensive security measures, such as OWASP Top-10, bot detection, access control, and more.
Link to standard data source instructions Ingest Kong